Forum Discussion
Skype for Business Edge and SSL decryption
Has anyone had any experience configuring the BIG-IP for SSL visibility between two Skype for Business Edge Servers? I'm inclined to think this is a non-starter. By default, the SSL session uses ECDHE_RSA for key exchange and includes a Handshake Protocol: Certificate Verify message from the client.
Assuming that these characteristics make decrypt impossible, has anyone had success changing the ciphers used by the Edge servers?
- Yoav_Crombie_25
Nimbostratus
What are you trying to achieve with this? We have a product encrypting the SIP traffic on the EDGE as well as an iApp that integrates in F5 for HTTPS traffic control specifically of Skype for Business You can read more here: skypeShield.com
- Stanislas_Piro2
Cumulonimbus
Hi,
As I understood, even if you can offload decrypt SSL, Edge connections are not HTTPS but skype protocol over SSL on port 443.
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com